Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> This is downstream of the TPM keys for sure

Not really. The UEFI firmware is supposed to extend PCRs in the TPM based on what it does, but it looks like these vulnerabilities allow taking over the firmware before it does this and thus allows spoofing of what goes in those PCRs. Which breaks TPM security.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: